- Home
- Sustainability
- Strengthening Information Security
Governance
- Corporate Governance
- Compliance
- Risk Management
- Business Continuity Plan (BCP)
- Strengthening Information Security
- Supply Chain Management (CSR Procurement)
- Communication with Shareholders and Investors
Strengthening Information Security
Information Security Promotion System
Under Dexerials’ information security management structure, a representative director serves as Chief Information Security Officer, while the executive officer, acting as Senior Information Security Officer, oversees company-wide initiatives. Working under their direction, Information Security Manager and ISM*1 Secretariat promote activities to strengthen information security across the organization.
- *1ISM: Information Security Management
- *2DXJ: Dexerials Corporation, DXPS: Dexerials Photonics Solutions Corporation, DX Kibou: Dexerials Kibou Corporation
Initiatives
Strengthening Information Security Rules
In response to the increasing sophistication and frequency of cyberattacks in recent years, as well as revisions to ISMS*3 standards, the Dexerials Group has updated its information security regulations. In addition, we have engaged an external expert organization to assess our current status and are preparing for ISMS implementation. Going forward, we will continue working to establish a system based on international standards and further enhance business continuity and reliability.
- *3ISMS: Information Security Management System
Bolstering Monitoring Systems
To defend against cyberattacks and prevent internal misconduct that could result in information leaks or operational shutdowns, we have strengthened our authentication system and enhanced security monitoring capabilities through a dedicated team. We detect security incidents at an early stage, implement prompt countermeasures, and confirm the effectiveness of our preventive measures.
Raising Employee Awareness
To foster awareness of the importance of information security, we distribute email newsletters and conduct e-learning programs for all employees. In addition, we provide cybersecurity training that incorporates the latest case studies and carry out drills simulating targeted email attacks. We will continue to enhance each employee’s awareness and further strengthen our security level through ongoing education and training.
Response System in the Event of a Security Incident and Initiatives
In fiscal 2024, the Dexerials Group established and began operating a Computer Security Incident Response Team (CSIRT). Headed by Senior Information Security Officer, CSIRT comprises the company’s secretariat and an external specialist support team. The structure enables close cooperation across divisions and ensures a system for rapid and effective response to incidents. Following the launch of the CSIRT system, we conducted security incident response training involving relevant divisions. This training, based on scenarios simulating real-life responses, helped identify issues and areas for improvement. Going forward, through regular training and continuous enhancement, we will further strengthen our ability to respond to incidents and support safe and secure business operations.
Response System in the Event of a Security Incident
- *4PIM: Personal Information Management
- *5JPCERT/CC: Japan Computer Emergency Response Team Coordination Center